On 27 March, bill parducci writes: Re: [xacml] Proposed Agenda for April 3 concall...
> is it me, or is this confusing:
It's just you :-) Actually, you have a good point. I will
reword it to say "If used, it MUST..."
> | xacml-context:Request [Optional]
>
> | The information used to make the authorization decision.
> | This element MUST be supplied if the
> | AuthorizationDecisionRequest "ReturnContext" attribute is
> | TRUE and MUST NOT be supplied if the
> | AuthorizationDecisionRequest "ReturnContext" attribute is
> | FALSE. The xacml-context:Request MUST include all XACML
> | Attributes used in making the Authorization Decision,
> | whether supplied in the original AuthorizationDecisionQuery
> | or obtained from external sources. The
> | xacml-context:Request MAY include additional XACML
> | Attributes that were not used in making the Authorization
> | Decision.
>
> 'MUST/MUST NOT' and 'optional' seem conflicting. is the intent to
> indicate 'IF USED, this element MUST ...?'
Anne
--
Anne H. Anderson Email:
Sun Microsystems Laboratories
1 Network Drive,UBUR02-311 Tel: 781/442-0928
Burlington, MA 01803-0902 USA Fax: 781/442-1692